HP: Threat actors are hijacking users’ Chrome browsers when downloading from pirating sites

While pirating sites might look appealing, they have more than just good files that can be downloaded.

   

techaeris.com/2023/06/14/hp-th

#technews #malware #ChromeLoader #hp

Last updated 2 years ago

Hackread.com · @Hackread
136 followers · 57 posts · Server mstdn.social

📣 , which was formerly discovered lurking within fake and antivirus, has now expanded its reach to encompass well-known games and utility software.

Read: hackread.com/roblox-nintendo-c

#CyberSecurity #Nintendo #Roblox #Gaming #Malware #Security #VPN #ChromeLoader

Last updated 3 years ago

Aida Akl · @AAKL
228 followers · 471 posts · Server noc.social
securityaffairs · @securityaffairs
454 followers · 385 posts · Server infosec.exchange
Tarnkappe.info · @tarnkappeinfo
1967 followers · 4232 posts · Server social.tchncs.de
Colin Cowie · @th3_protoCOL
634 followers · 171 posts · Server infosec.exchange

Day 1️⃣​0️⃣​ of : MacOS Browser Hijacker Scripts🍎​
🔗​ github.com/colincowie/100DaysO

Background on these MacOS malware scripts used by aka :
📖​ redcanary.com/blog/chromeloade
📖​ blogs.vmware.com/security/2022
📖​ th3protocol.com/2022/Choziosi-

Todays rule did a nice job of detecting the historical ChromeLoader scripts. A more generic yara rule for identifying .command script abuse would potentially be pretty interesting!

#100DaysofYARA #ChromeLoader #choziosiloader

Last updated 3 years ago

da_667 · @da_667
2310 followers · 757 posts · Server infosec.exchange

Emerging Threats Daily Ruleset Update Summary 2022/11/07

Summary:

9 new OPEN, 18 new PRO (9 + 9) Chromeloader, SocGholish,
TransparentTribe, WinGO\Monitor.go, Various Android Mobile Malware,
Phishing, and more.

Thanks @MalGamy @0xrb

Please share issues, feedback, and requests at
feedback.emergingthreats.net/f

Added rules:

Open:

2039744 - ET MALWARE ChromeLoader CnC Domain (istakechau .autos) in DNS Lookup (malware.rules)
2039745 - ET MALWARE ChromeLoader CnC Domain (imenttogethe .xyz) in DNS Lookup (malware.rules)
2039746 - ET MALWARE ChromeLoader CnC Checkin M1 (malware.rules)
2039747 - ET MALWARE ChromeLoader CnC Error (malware.rules)
2039748 - ET MALWARE ChromeLoader CnC Checkin M2 (malware.rules)
2039749 - ET MALWARE WinGO\Monitor.go CnC Checkin (malware.rules)
2039750 - ET MALWARE APT36/TransparentTribe CnC Domain (richa-sharma .ddns .net) in DNS Lookup (malware.rules)
2039751 - ET MALWARE SocGholish Domain in DNS Lookup (course .netpickstrading .com) (malware.rules)
2039752 - ET MALWARE SocGholish CnC Domain in DNS Lookup (campaign .tworiversboat .com) (malware.rules)

Pro:

2852795 - ETPRO MOBILE_MALWARE Android/Spy.Agent.CCM CnC Domain in DNS Lookup (mobile_malware.rules)
2852796 - ETPRO MOBILE_MALWARE Android/Spy.Agent.CCM CnC Domain in DNS Lookup (mobile_malware.rules)
2852797 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.SmsThief.sn Checkin (mobile_malware.rules)
2852798 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.SmsThief.sn Checkin 2 (mobile_malware.rules)
2852799 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.SmsThief.sn Checkin 3 (mobile_malware.rules)
2852800 - ETPRO MALWARE HTML/Fake Password Protected Document Blob Downloader M1 (malware.rules)
2852801 - ETPRO MALWARE HTML/Fake Password Protected Document Blob Downloader M2 (malware.rules)
2852802 - ETPRO PHISHING Successful Twitter Credential Phish 2022-11-04 (phishing.rules)
2852803 - ETPRO PHISHING Twitter Credential Phish Landing Page 2022-11-04 (phishing.rules)

\Monitor.go

#snort #suricata #nsm #malware #ChromeLoader #SocGholish #Android_Mobile_Malware #phishing #transparenttribe #WinGO

Last updated 3 years ago

TechHelpKB.com 📚 · @techhelpkb
339 followers · 1848 posts · Server mastodon.social

Tech Wrap-Up for Week #29, the top 10 stories by user engagement. New variant, plagues , blocks RDP brute-force attacks, update, easy secure , & more in this week's wrap-up. techhelpkb.com/tech-wrap-up-we

#ChromeLoader #cloudmensis #spyware #macs #windows11 #chrome #security #android #dns

Last updated 3 years ago

TechHelpKB.com 📚 · @techhelpkb
339 followers · 1848 posts · Server mastodon.social
Parliamo di news! · @parliamodinews
15 followers · 87555 posts · Server masthead.social
TechHelpKB.com 📚 · @techhelpkb
339 followers · 1849 posts · Server mastodon.social

Tech Wrap-Up Week 21 2022. Teen online & , & flaws, surge, sucks at blocking sites, & , 6.0 released, glitchy apps, new features expected at , Chrome 102 released, and protecting your in , all in this week's wrap-up. techhelpkb.com/tech-wrap-up-we

#privacy #safety #blockchain #defi #ChromeLoader #malware #chrome #phishing #cybersecurity #coding #wordpress #mac #WWDC22 #windows

Last updated 3 years ago

TechHelpKB.com 📚 · @techhelpkb
339 followers · 1849 posts · Server mastodon.social

Tech Wrap-Up 5-26-2022, which is National Paper Airplane Day. Beware , 6.0 released, CISA says patch 75 flaws, in , File Explorer tricks, ditching for , all in today's wrap-up. techhelpkb.com/tech-wrap-up-5-

#ChromeLoader #malware #wordpress #screenshots #windows #chrome #firefox

Last updated 3 years ago

⚠️WARNING: attacks are on the rise — a persistent and pervasive web browser hijacker that uses to inject malicious extensions and redirects traffic to malicious ads.

t.co/CzHbBb8Z5R

#Hacking #CyberSecurity #InfoSec #powershell #Malware #ChromeLoader

Last updated 3 years ago